X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 05/01/2025 19:06

Nuclei flaw allows signature bypass and code execution

A vulnerability in Nuclei, an open-source vulnerability scanner, could allow attackers to bypass signature checks and execute malicious code. A high-severity security flaw, tracked as CVE-2024-43405 (CVSS score of 7.4), in the open-source vulnerability scanner ProjectDiscovery’s Nuclei, could allow attackers to bypass signature checks and execute malicious code. The Wiz’s engineering team discovered the vulnerability. The vulnerability […]

Articles similaires

Sorry! Image not available at this time

High-severity MongoDB flaw CVE-2025-14847 could lead to server takeover

itsecuritynews.info - 25/12/2025 11:02

MongoDB addressed a high-severity vulnerability that can be exploited to achieve remote code execution on vulnerable servers. MongoDB addressed a...

Sorry! Image not available at this time

High-severity MongoDB flaw CVE-2025-14847 could lead to server takeover

itsecuritynews.info - 25/12/2025 11:02

MongoDB addressed a high-severity vulnerability that can be exploited to achieve remote code execution on vulnerable servers. MongoDB addressed a...

Sorry! Image not available at this time

Critical n8n flaw could enable arbitrary code execution

securityaffairs.co - 23/12/2025 15:26

A critical flaw in the n8n automation platform could allow attackers to execute arbitrary code if exploited under specific conditions. Researchers...

Sorry! Image not available at this time

New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory

itsecuritynews.info - 27/12/2025 08:31

A high-severity security flaw has been disclosed in MongoDB that could allow unauthenticated users to read uninitialized heap memory. The...

Sorry! Image not available at this time

New MongoDB Flaw Lets Unauthenticated Attackers Read Uninitialized Memory

itsecuritynews.info - 27/12/2025 08:31

A high-severity security flaw has been disclosed in MongoDB that could allow unauthenticated users to read uninitialized heap memory. The...

Sorry! Image not available at this time

High-severity MongoDB flaw CVE-2025-14847 could lead to server takeover

securityaffairs.co - 25/12/2025 10:12

MongoDB addressed a high-severity vulnerability that can be exploited to achieve remote code execution on vulnerable servers. MongoDB addressed a...

Sorry! Image not available at this time

New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands

itsecuritynews.info - 05:31

A new critical security vulnerability has been disclosed in n8n, an open-source workflow automation platform, that could enable an authenticated...

Sorry! Image not available at this time

LangChain core vulnerability allows prompt injection and data exposure

securityaffairs.co - 27/12/2025 18:20

A critical flaw in LangChain Core could allow attackers to steal sensitive secrets and manipulate LLM responses via prompt injection. LangChain Core...

Sorry! Image not available at this time

M-Files Vulnerability Allows Attackers to Steal Active User Session Tokens

itsecuritynews.info - 24/12/2025 18:02

A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...

Sorry! Image not available at this time

M-Files Vulnerability Allows Attackers to Steal Active User Session Tokens

itsecuritynews.info - 24/12/2025 18:02

A critical security vulnerability in M-Files Server could allow authenticated attackers to capture active user session tokens via the M-Files Web...